CVE List

Id CVE No. Status Description Phase Votes Comments Actions
43541  CVE-2010-0957  Candidate  Directory traversal vulnerability in content.php in Saskia"s Shopsystem beta1 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the id parameter.  Assigned (20100309)  None (candidate not yet proposed)    View
43797  CVE-2010-1213  Candidate  The importScripts Web Worker method in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 does not verify that content is valid JavaScript code, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted HTML document.  Assigned (20100330)  None (candidate not yet proposed)    View
44053  CVE-2010-1469  Candidate  Directory traversal vulnerability in the Ternaria Informatica JProject Manager (com_jprojectmanager) component 1.0 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.  Assigned (20100419)  None (candidate not yet proposed)    View
44309  CVE-2010-1725  Candidate  SQL injection vulnerability in offers_buy.php in Alibaba Clone Platinum allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20100505)  None (candidate not yet proposed)    View
44565  CVE-2010-1981  Candidate  Directory traversal vulnerability in the Fabrik (com_fabrik) component 2.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.  Assigned (20100519)  None (candidate not yet proposed)    View

Page 1733 of 20943, showing 5 records out of 104715 total, starting on record 8661, ending on 8665

Actions